CV0-004 · Question #340
Two CVEs are discovered on servers in the company's public cloud virtual network. The CVEs are listed as having an attack vector value of network and CVSS score of 9.0. Which of the following…
The correct answer is A. Patching the operating systems. A CVSS score of 9.0 indicates critical vulnerabilities, and with a network attack vector, they can be exploited remotely. The most effective mitigation is applying vendor patches to fix the underlying vulnerabilities in the operating systems.
Question
Two CVEs are discovered on servers in the company’s public cloud virtual network. The CVEs are listed as having an attack vector value of network and CVSS score of 9.0. Which of the following actions is the best way to mitigate the vulnerabilities?
Options
- APatching the operating systems
- BUpgrading the operating systems to the latest beta
- CEncrypting the operating system disks
- DDisabling unnecessary open ports
How the community answered
(52 responses)- A79% (41)
- B2% (1)
- C13% (7)
- D6% (3)
Explanation
A CVSS score of 9.0 indicates critical vulnerabilities, and with a network attack vector, they can be exploited remotely. The most effective mitigation is applying vendor patches to fix the underlying vulnerabilities in the operating systems.
Topics
Community Discussion
No community discussion yet for this question.